CVE-2018-17980
CVE-2018-17980
NoMachine before 5.3.27 and 6.x before 6.3.6 allows attackers to gain privileges via a Trojan horse wintab32.dll file located in the same directory as a .nxs file, as demonstrated by a scenario where the .nxs file and the DLL are in the current working directory, and the Trojan horse code is executed. (The directory could, in general, be on a local filesystem or a network share.).
Affected products
n/a · n/apublic PoCs found — 3
cve_referencepacketstormsecurity.com/files/149784/NoMachine-5.3.26-Remote-Code-Execution.htmlunverifiedcve_referencewww.exploit-db.com/exploits/45611/unverifiedexploitdbwww.exploit-db.com/exploits/45611unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →